Improper Access Validation in Red Lion Europe mbCONNECT24 and Helmholz myREX24 Products
CVE-2023-4834
What is CVE-2023-4834?
A security vulnerability exists in Red Lion Europe mbCONNECT24 and Helmholz myREX24 products due to an improperly implemented access validation mechanism. This flaw permits an authenticated, low-privileged attacker to gain unauthorized read access to certain non-critical device information within their account. This exposure poses a risk of information leakage, enabling potentially harmful insights into device configurations or usage that should not be visible to an attacker with limited permissions. Users should evaluate their systems for these versions and consider implementing necessary patches to mitigate the risk.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
mbCONNECT24 0 <= 2.14.2
mymbCONNECT24 0 <= 2.14.2
myREX24 0 <= 2.14.2
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
